| | CVE-2019-1200 | Microsoft | high | 7.8 | 7.4%
| | A remote code execution vulnerability exists in Microsoft Outlook software when it fails to properly… | Aug 14, 2019 | Feb 20, 2026 |
| | CVE-2019-1201 | Microsoft | high | 7.8 | 11.3%
| | A remote code execution vulnerability exists in Microsoft Word software when it fails to properly ha… | Aug 14, 2019 | Feb 20, 2026 |
| | CVE-2019-1202 | Microsoft | medium | 4.4 | 0.6%
| | An information disclosure vulnerability exists in the way Microsoft SharePoint handles session objec… | Aug 14, 2019 | Feb 20, 2026 |
| | CVE-2019-1203 | Microsoft | medium | 5.4 | 0.4%
| | A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly… | Aug 14, 2019 | Feb 20, 2026 |
| | CVE-2019-1204 | Microsoft | medium | 4.3 | 8.6%
| | An elevation of privilege vulnerability exists when Microsoft Outlook initiates processing of incomi… | Aug 14, 2019 | Feb 20, 2026 |
| | CVE-2019-1205 | Microsoft | critical | 9.8 | 9.5%
| | A remote code execution vulnerability exists in Microsoft Word software when it fails to properly ha… | Aug 14, 2019 | Feb 20, 2026 |
| | CVE-2019-1211 | Microsoft | high | 7.3 | 0.4%
| | An elevation of privilege vulnerability exists in Git for Visual Studio when it improperly parses co… | Aug 14, 2019 | Feb 20, 2026 |
| | CVE-2019-1218 | Microsoft | medium | 5.4 | 5.8%
| | A spoofing vulnerability exists in the way Microsoft Outlook iOS software parses specifically crafte… | Aug 14, 2019 | Feb 20, 2026 |
| | CVE-2019-1229 | Microsoft | high | 8.8 | 9.4%
| | An elevation of privilege vulnerability exists in Dynamics On-Premise v9. An attacker who successful… | Aug 14, 2019 | Feb 20, 2026 |
| | CVE-2019-1258 | Microsoft | high | 8.8 | 10.6%
| | An elevation of privilege vulnerability exists in Azure Active Directory Authentication Library On-B… | Aug 14, 2019 | Feb 20, 2026 |
| | CVE-2019-10086 | Apache | high | 7.3 | 30.0%
| | In Apache Commons Beanutils 1.9.2, a special BeanIntrospector class was added which allows suppressi… | Aug 20, 2019 | Aug 25, 2026 |
| | CVE-2019-12627 | Cisco | high | 7.5 | 1.2%
| | A vulnerability in the application policy configuration of the Cisco Firepower Threat Defense (FTD) … | Aug 21, 2019 | Aug 11, 2026 |
| | CVE-2019-16168 | Tenable | medium | 6.5 | 0.8%
| | In SQLite through 3.29.0, whereLoopAddBtreeIndex in sqlite3.c can crash a browser or other applicati… | Sep 9, 2019 | May 28, 2026 |
| | CVE-2019-12673 | Cisco | high | 7.5 | 1.8%
| | A vulnerability in the FTP inspection engine of Cisco Adaptive Security (ASA) Software and Cisco Fir… | Oct 2, 2019 | Aug 11, 2026 |
| | CVE-2019-12674 | Cisco | high | 8.2 | 0.4%
| | Multiple vulnerabilities in the multi-instance feature of Cisco Firepower Threat Defense (FTD) Softw… | Oct 2, 2019 | Aug 11, 2026 |
| | CVE-2019-12675 | Cisco | high | 8.8 | 0.4%
| | Multiple vulnerabilities in the multi-instance feature of Cisco Firepower Threat Defense (FTD) Softw… | Oct 2, 2019 | Aug 11, 2026 |
| | CVE-2019-12676 | Cisco | high | 7.4 | 0.5%
| | A vulnerability in the Open Shortest Path First (OSPF) implementation of Cisco Adaptive Security App… | Oct 2, 2019 | Aug 11, 2026 |
| | CVE-2019-12678 | Cisco | high | 7.5 | 1.8%
| | A vulnerability in the Session Initiation Protocol (SIP) inspection module of Cisco Adaptive Securit… | Oct 2, 2019 | Aug 11, 2026 |
| | CVE-2019-12694 | Cisco | medium | 6.7 | 0.4%
| | A vulnerability in the command line interface (CLI) of Cisco Firepower Threat Defense (FTD) Software… | Oct 2, 2019 | Aug 11, 2026 |
| | CVE-2019-12695 | Cisco | medium | 6.1 | 1.1%
| | A vulnerability in the Clientless SSL VPN (WebVPN) portal of Cisco Adaptive Security Appliance (ASA)… | Oct 2, 2019 | Aug 11, 2026 |
| | CVE-2019-12698 | Cisco | high | 7.5 | 2.0%
| | A vulnerability in the WebVPN feature of Cisco Adaptive Security Appliance (ASA) Software and Cisco … | Oct 2, 2019 | Aug 11, 2026 |
| | CVE-2019-12699 | Cisco | high | 7.8 | 0.5%
| | Multiple vulnerabilities in the CLI of Cisco FXOS Software and Cisco Firepower Threat Defense (FTD) … | Oct 2, 2019 | Aug 11, 2026 |
| | CVE-2019-12700 | Cisco | medium | 6.5 | 1.9%
| | A vulnerability in the configuration of the Pluggable Authentication Module (PAM) used in Cisco Fire… | Oct 2, 2019 | Aug 11, 2026 |
| | CVE-2019-15256 | Cisco | high | 8.6 | 2.0%
| | A vulnerability in the Internet Key Exchange version 1 (IKEv1) feature of Cisco Adaptive Security Ap… | Oct 2, 2019 | Aug 11, 2026 |
| | CVE-2019-1978 | Cisco | medium | 5.8 | 9.4%
| | A vulnerability in the stream reassembly component of Cisco Firepower Threat Defense Software, Cisco… | Nov 5, 2019 | Aug 11, 2026 |
| | CVE-2019-1980 | Cisco | medium | 5.3 | 1.0%
| | A vulnerability in the protocol detection component of Cisco Firepower Threat Defense Software, Cisc… | Nov 5, 2019 | Aug 11, 2026 |
| | CVE-2019-1981 | Cisco | medium | 5.8 | 1.0%
| | A vulnerability in the normalization functionality of Cisco Firepower Threat Defense Software, Cisco… | Nov 5, 2019 | Aug 11, 2026 |
| | CVE-2019-1982 | Cisco | medium | 5.3 | 1.0%
| | A vulnerability in the HTTP traffic filtering component of Cisco Firepower Threat Defense Software, … | Nov 5, 2019 | Aug 11, 2026 |
| | CVE-2019-1385 | Microsoft | medium | — | 3.6%
| ⚠ KEV | An elevation of privilege vulnerability exists when the Windows AppX Deployment Extensions improperl… | Nov 12, 2019 | Aug 12, 2026 |
| | CVE-2019-1405 | Microsoft | medium | — | 29.9%
| ⚠ KEV | An elevation of privilege vulnerability exists when the Windows Universal Plug and Play (UPnP) servi… | Nov 12, 2019 | Aug 12, 2026 |
| | CVE-2019-1429 | Microsoft | high | 7.5 | 83.0%
| ⚠ KEV | A remote code execution vulnerability exists in the way that the scripting engine handles objects in… | Nov 12, 2019 | Jan 14, 2026 |
| | CVE-2019-6693 | Fortinet | medium | — | 5.7%
| ⚠ KEV | Use of a hard-coded cryptographic key to cipher sensitive data in FortiOS configuration backup file … | Nov 21, 2019 | Aug 4, 2026 |
| | CVE-2019-1458 | Microsoft | medium | — | 73.9%
| ⚠ KEV | An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properl… | Dec 10, 2019 | Aug 12, 2026 |
| | CVE-2019-17571 | Apache | critical | 9.8 | 33.8%
| | Included in Log4j 1.2 is a SocketServer class that is vulnerable to deserialization of untrusted dat… | Dec 20, 2019 | May 28, 2026 |
| | CVE-2019-11044 | Tenable | low | 3.7 | 5.1%
| | In PHP versions 7.2.x below 7.2.26, 7.3.x below 7.3.13 and 7.4.0 on Windows, PHP link() function acc… | Dec 23, 2019 | Aug 17, 2026 |
| | CVE-2019-11045 | Tenable | low | 3.7 | 8.8%
| | In PHP versions 7.2.x below 7.2.26, 7.3.x below 7.3.13 and 7.4.0, PHP DirectoryIterator class accept… | Dec 23, 2019 | Aug 17, 2026 |
| | CVE-2019-11046 | Tenable | low | 3.7 | 4.1%
| | In PHP versions 7.2.x below 7.2.26, 7.3.x below 7.3.13 and 7.4.0, PHP bcmath extension functions on … | Dec 23, 2019 | Aug 17, 2026 |
| | CVE-2019-11049 | Tenable | medium | 6.5 | 4.2%
| | In PHP versions 7.3.x below 7.3.13 and 7.4.0 on Windows, when supplying custom headers to mail() fun… | Dec 23, 2019 | Aug 17, 2026 |
| | CVE-2019-11050 | Tenable | medium | 4.8 | 7.6%
| | When PHP EXIF extension is parsing EXIF information from an image, e.g. via exif_read_data() functio… | Dec 23, 2019 | Aug 17, 2026 |
| | CVE-2020-0638 | Microsoft | medium | — | 3.0%
| ⚠ KEV | An elevation of privilege vulnerability exists in the way the Update Notification Manager handles fi… | Jan 14, 2020 | Aug 12, 2026 |
| | CVE-2020-0618 | Microsoft | high | 8.8 | 99.0%
| ⚠ KEV | A remote code execution vulnerability exists in Microsoft SQL Server Reporting Services when it inco… | Feb 11, 2020 | Aug 15, 2026 |
| | CVE-2020-3138 | Cisco | medium | 6.7 | 0.2%
| | A vulnerability in the upgrade component of Cisco Enterprise NFV Infrastructure Software (NFVIS) cou… | Feb 19, 2020 | Aug 24, 2026 |
| | CVE-2020-3153 | Cisco | medium | 6.5 | 27.5%
| ⚠ KEV | A vulnerability in the installer component of Cisco AnyConnect Secure Mobility Client for Windows co… | Feb 19, 2020 | Aug 12, 2026 |
| | CVE-2019-17569 | Apache | medium | 4.8 | 8.9%
| | The refactoring present in Apache Tomcat 9.0.28 to 9.0.30, 8.5.48 to 8.5.50 and 7.0.98 to 7.0.99 int… | Feb 24, 2020 | Aug 25, 2026 |
| | CVE-2020-1938 | Apache | critical | 9.8 | 99.3%
| ⚠ KEV | When using the Apache JServ Protocol (AJP), care must be taken when trusting incoming connections to… | Feb 24, 2020 | Aug 25, 2026 |
| | CVE-2020-3166 | Cisco | medium | 6.7 | 0.3%
| | A vulnerability in the CLI of Cisco FXOS Software could allow an authenticated, local attacker to re… | Feb 26, 2020 | Aug 11, 2026 |
| | CVE-2020-3167 | Cisco | high | 7.8 | 0.5%
| | A vulnerability in the CLI of Cisco FXOS Software and Cisco UCS Manager Software could allow an auth… | Feb 26, 2020 | Aug 11, 2026 |
| | CVE-2020-0787 | Microsoft | medium | — | 42.5%
| ⚠ KEV | An elevation of privilege vulnerability exists when the Windows Background Intelligent Transfer Serv… | Mar 12, 2020 | Aug 12, 2026 |
| | CVE-2020-0796 | Microsoft | medium | — | 99.8%
| ⚠ KEV | A remote code execution vulnerability exists in the way that the Microsoft Server Message Block 3.1.… | Mar 12, 2020 | Aug 12, 2026 |
| | CVE-2018-11802 | Apache | medium | 4.3 | 0.2%
| | In Apache Solr, the cluster can be partitioned into multiple collections and only a subset of nodes … | Apr 1, 2020 | Apr 15, 2026 |